< Home

Default Settings for IPSec

Table 1 Default settings for IPSec

Parameter

Default Setting

Local host name used in IKE negotiation

Local device name

Interval for sending NAT keepalive packets

20s

IKE proposal

An IKE proposal with the lowest priority. For details, see Configuring an IKE Proposal.

IPSec proposal

No IPSec proposal is configured. For detailed parameters in an IPSec proposal, see Configuring an IPSec Proposal.

SA trigger mode

Traffic-based

ACL check for decrypted packets

Disabled

Global IPSec anti-replay

Enabled

Global IPSec anti-replay window size

1024

Packet fragmentation mode

Fragmentation after encryption

NAT traversal

Enabled

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >